A Taxonomy for Risk Assessment of Cyberattacks on Critical Infrastructure (TRACI)

نویسندگان

چکیده

Cybercrime against critical infrastructures such as nuclear reactors, power plants, and dams has been increasing in frequency severity. Recent literature regarding these types of attacks extensive but due to the sensitive nature this field, there is very little empirical data. We address issues by integrating Routine Activity Theory Rational Choice Theory, we create a classification tool called TRACI (Taxonomy for Risk Assessment Cyberattacks on Critical Infrastructure). take Design Science Research approach develop, evaluate, refine proposed artifact. use mixed methods demonstrate that our taxonomy can successfully capture characteristics various cyberattacks infrastructure. consists three dimensions, each dimension contains its own subdimensions. The first comprises hacker motivation, which be financial, socio-cultural, thrill-seeking, and/or economic. second represents assets cyber, physical, cyber-physical components. third related threats, vulnerabilities, controls are fundamental establishing maintaining an information security posture overall cyber resilience. Our work among utilize criminological theories empirically validated artifact improving infrastructure risk management.

برای دانلود باید عضویت طلایی داشته باشید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Cyberattacks on Critical Infrastructure and Potential Sustainable Development Impacts

Directory; Cabell’s Directories; INSPEC; MediaFinder; ProQuest Advanced Technologies & Aerospace Journals; ProQuest Computer Science Journals; ProQuest Illustrata: Technology; ProQuest Military Collection; ProQuest SciTech Journals; ProQuest Technology Journals; The Index of Information Systems Journals; The Standard Periodical Directory; Ulrich’s Periodicals Directory Copyright The Internation...

متن کامل

the impact of training on second language writing assessment: a case of raters’ biasedness

چکیده هدف اول این تحقیق بررسی تأثیر آموزش مصحح بر آموزش گیرندگان براساس پایایی نمره های آنها در پنج بخش شامل محتوا ، سازمان ، لغت ، زبان و مکانیک بود. هدف دوم این بود که بدانیم آیا تفاوتهای بین آموزشی گیرندگان زن و مرد در پایایی نمرات آنها وجود دارد. برای بررسی این موارد ، ما 90 دانشجو در سطح میانه (متوسط) که از طریق تست تعیین سطح شده بودند انتخاب شدند. بعد از آنها خواستیم که درباره دو موضوع ا...

15 صفحه اول

Security Requirements Driven Risk Assessment for Critical Infrastructure Information Systems

Major information processing and associated value-added services provided by information systems in critical infrastructures are being increasingly used for various purposes irrespective of their security posture. Although several infrastructure-wide standard security Certification and Accreditation (C&A) processes exist, their effectiveness in the real world is challenged by the complexity of ...

متن کامل

“the effect of risk aversion on the demand for life insurance: the case of iranian life insurance market”

abstract: about 60% of total premium of insurance industry is pertained?to life policies in the world; while the life insurance total premium in iran is less than 6% of total premium in insurance industry in 2008 (sigma, no 3/2009). among the reasons that discourage the life insurance industry is the problem of adverse selection. adverse selection theory describes a situation where the inf...

15 صفحه اول

the impact of portfolio assessment on iranian efl students essay writing: a process-oriented approach

this study was conducted to investigate the impact of portfolio assessment as a process-oriented assessment mechanism on iranian efl students’ english writing and its subskills of focus, elaboration, organization, conventions, and vocabulary. out of ninety juniors majoring in english literature and translation at the university of isfahan, sixty one of them who were at the same level of writing...

15 صفحه اول

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

ژورنال

عنوان ژورنال: Communications of the Association for Information Systems

سال: 2023

ISSN: ['1529-3181']

DOI: https://doi.org/10.17705/1cais.05202